mp3rocket_setup.exe

Sutenerar

MP3 TechSupport LLC

The installer utilizes the installCore download manager which may bundle additional offers for various ad-supported toolbars, extensions and utilities. The application mp3rocket_setup.exe, “Sutenerar Setup ” by MP3 TechSupport has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the installCore installer. The file has been seen being downloaded from www.hostflashconcepts.com and multiple other hosts.
Publisher:
Nopate   (signed by MP3 TechSupport LLC)

Product:
Sutenerar

Description:
Sutenerar Setup

Version:
2.4.2.2

MD5:
de4060750d5971ad40432ad1fe3850e7

SHA-1:
0180218672994b89601b6f44a14674cf1ac6e66f

SHA-256:
a7556a6de1cef7bda6d1ebc597749f196affab0418dbf469924644f5dc484f07

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
12/26/2024 12:57:14 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.installCore.MP3TechS.Installer (M)
16.7.6.10

File size:
1.1 MB (1,135,240 bytes)

Product version:
3.4

Copyright:
Internet

File type:
Executable application (Win32 EXE)

Bundler/Installer:
installCore (using Inno Setup)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\mp3rocket_setup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/21/2016 9:00:00 AM

Valid to:
4/22/2017 8:59:59 AM

Subject:
CN=MP3 TechSupport LLC, O=MP3 TechSupport LLC, STREET=3051 W Maple Loop Dr Ste 201, L=Lehi, S=Utah, PostalCode=84043, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0081ECF0B90414131BF9016277516512CB

File PE Metadata
Compilation timestamp:
6/20/1992 7:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:97jlTnJ/583h2DeRk0bT6BBk2FTPaqoxNbvGiwFeaR2MEWzGat:97hTnh58gqe0nCDrox5uiwbTPL

Entry address:
0xAA98

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 2E, 86, FF, FF, E8, 35, 98, FF, FF, E8, 9C, 9B, FF, FF, E8, B7, 9F, FF, FF, E8, 56, BF, FF, FF, E8, ED, E8, FF, FF, E8, 54, EA, FF, FF, 33, C0, 55, 68, 69, B1, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 32, B1, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, D0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, C2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, 24, 93, FF, FF, 8D, 55, F0, 33, C0, E8, 66, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
7.8995

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
40.5 KB (41,472 bytes)

The file mp3rocket_setup.exe has been seen being distributed by the following 50 URLs.

http://www.hostflashconcepts.com/TGTnr5yHgdlbgJ7clSwOHyyXx2MmE6f7kMYkqFvYr GT5gba3FfRipAm5IlYzAZyuSl05QIqH8C2G8UykN5pL4C82CeMu6oJvlxgLnYg5Eyt5enR7TYH3G8YCCbUNF8GIs6czdsAEQl3Dl5Jo8C2bvdCzk9Dw2rn7v6ukllJCR3cTxhkJw4=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/CmJytXouVbVzaGUJSl3oexspCxnpbAzpMOS2CouteKnlrDgZThyQMU87rS 9CaIXPEpt6Qrv6bSUaMKKimXg0Uqtzlx3Iy2p4pqp7nhjB_2roLvq0FJdqSn9QlefUda0a2EzPSeXOXAg6pZQdfAn6Wj9wz_ffkM3edu53Jq8IJeb3eglcpE=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/ER2iHtw24wSO1jbQFpNXmUoUTUZbRt7BiBjUsVXvNxrmwb19Mp8s7INzfIfbEkL0ToL81ixGlEK8xH1 ymxfyVCenRXBO0 MuJVFoyQFsQgACZ m_pu8wTEcOr_AznyLM_qiy_D hhJIS7cpgusKgRrQUGt2L2hFc6rZ64LrG9X6XM4xNpc=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/8qUvjtE4rp_gsMBYvjhfsTvOUSrZ5rNmTVz84oaSG_ Ngl4AIwVHFVRmXdoZorp4ukLOkMe0SJFhMSDIOlH6Y9VgbKUY0ixVyPToq iIAxHlOFK6Un8PSD2PDz Ctl3gCuugsApNM1xgR4l5i9AFfD2fhBdKk0DcDOeQv_qhPiMgiAayTOQ=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/hbQ7jA5Iu7ZelIHbflEpiJWyejf 6vdfB4L9LoIM fyXwHb6NX9USdJw7nlVS2s0V0Da3nFo_Hf8oqZrtPh8JH0xyKreRHM3OFw1PibJ ieR9w4kLbjWV0lWSAzY8Uigl0vHeD3FDpsjRolHKtErQvs7eZ7pkluatPe_s1eWmkvdHvcuA Q=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/k9CY7nbzO3E4Cr_oDlsJxB8hD2abmr37NQQZKV2wZlILtgbQxDaIkvQB_NJ74WR ktKXom98PcrDVoD6WfirWG8QvrgHAZZQfFkMWhiBwysbZkDbpR2tuClRl77yxG wY0NboJhYk85xEJmu8U 1oUxZQdwNSYApMtpr_AkSTXs_sEk_w9g=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/P5pTA4mo5Pneh 7RZ6RrgIewSaIXfBubkE_cO8PuTIHT9mVOIeXjeGdQUGGuPLvlU00lTurQk2J1AGTP11lXFANslmQ4wr8LwjHDMj8zrmzLrPYPNk85ZqPpU4hcMlg1MaPhDbHD94cqadcNdKnS9U_3YjUYBets_TP9StU TdQk3_3WkUo=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/pmXXXh4ZuCrB3KIo1HTdfzd60H1WvTTtdbdvM95O8kNvhLkWiSvapW_VYRq3gUfZYFpraK_HHE72njr70dNdZd07PVllPJwQtY5CzgZYnpY2ArflOPDPIMMPJyEc0DFCP67 9legUwIm7MMQCkJdKWHfhHgfnbz4NkQJnnrINnqkghyltjE=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/KkMJUaMrxlm0_P1yV9ZST238krfSYfjUob2Vl2Z6gJtEybnSbRgxe_UaRwc3hB8IxZyEPxzB45MW8pB QFPq317xZryKVLLJXYZtErMXItPOTQDDV3Adsxcikn6r_9aF5yX8IKC8Mu2W6aHHs2h3dyhOJhIDYzPJyBfGI9QruQDrH9QNjRs=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/8HRzbFu5mSEGkYp Fa jfncs oTDhhNRDLsU5U2ivS69cJU91lS W9d3nMBD3g4GMrRgOfr9aDjJc80hL4DMW0QV2hQuIB_sopo1zVouT7QZ189NCz0h4O gA0nelIDrVTamrX02cVbTX2FjerftA6GijmgDRTnJXaCXtTcAMkvg oQ7Y5g=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/zo6PYel5FDU5xOgeY0lOaEIr5ecIoKYyWmbuG0gdW8uejkEj_RnIQdnK8odR3cEkPNufPaJMkhjsC6XzF3iCDnXLH5ozoKkj5empMcxdFdjz5EUtcEfxTp3EnJi3nuGMsuSpeqIei9xlvntTWxURe__fN4103QRYsIZ3mmefYxpIvz7EWg8=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/fzHCCYGR8p5ROMXllXz89AbV6dhR7 6bse6MhGIlj9prUGTSu0Ewfhzntob0EvCgiDO2uAPo8fatRlY502K4kqsk9eI6nSlZhgLFInCLTLcpDXljhjiWjbvutRvGy1hLRNqjgsY2ntv1BPd_BT_WAq4x36mGADC_eTWl2bUPtJmJiTYLPBc=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/t BrH9k8mZ5OL4P1YFOitdsBQEHB8vW_ODpW4GGTw7_Wp92GQ__A1WfASm7crH2E8GDRmlmQua_r60t0Zdsn1f8KxhTZz0yCVPGAmIJWuXAxHvL7nM3zpTwnto9UopJQaCkk5U_4JTXb7pb1UlzhzpI5zcFKUuTDgO2ArEr7cntVp tuwfQ=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/ySW5Loi3b2Eoj cVPTwKOqthN0VPbvE98F WBhc_mvvCpbWE88RIeB1T00AltTAysV Wk7XXj0sLoIVxRplLQr8N0wiwPDD1ePJ5P5qLeT2ao7D2eSbz4M_WSFngCgfObSONPiSsiZrndOe_66D_ 3HK1XCibZY_Q1LsRJnlFzYN71yg3JQ=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/aIPwjdf83P8JQRuKQ5zLlyOlOFANFO_1SUUFviUPF00Jjf9CepaljlbX0DYErP0_HFWT5PKzbDCaVRP93rt6SQ7kpv7LuAHlmE fjhGZpdmHN tB0Wu9y2rVwMTwKk3hsD2MeUrkBLaIX3J59MXEZfxugijvxLI4q_vvq_5WPX2gVQfRJqQ=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/BeIpzlPzBuHpAZMExro5ZtX4tZVgyHVIXQLhKKfgqoOJWLSnt4_R u3zmaYpJHBhab4SGv14pEmMa07f5u4KgBfJiNKc1TzgwMb56QBSpi8TZ3JiPGhsoJbmN t4y9 AKD223_2Gb1rQBB9RUqIERJHRBdjsQ7J3XejHYMJGpHSPh4dFxJc=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/AG02UmlGH0nZJwFCnk kTzQonB9U rw4W0VgawhOdBJbpC3W1A1b_YEU5i7WXEYMWv_3JA6nxmE3BY9maiStCSykCckn2lYFTT8hOqdP_UNi31yE3zFG2ly4o6JEM Ojpw4d_j4OysALYDyGDdLXl4uU3fGZ3i8OC8axu59v9g009wy0aHc=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/ootNYPPtOQJMl4A521XEHkaDCyhn0pLtP8 EOqnlzv1ulvGYqMiKFLuI7Bn6KjEgwjV2FRhUVyUp7UVT55x5az8xw6rOm4CBffUS4btuaJjPvSmMHRnItnIFxy_l4OSt u_Qte3_vQrug6EcvqWFw4vjGyy45V60qWlvEc2GgXI_6Pj U6s=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/IZwOY7F6trTPvZ9NwnYbEkKI61rCa3_89Oqws0vP1bJQJJDwexrtnvFXqS9N5d6Xd52vbXi71m7xbuhUXQcG6rDwWVaGv81bU0mJbMDOuXwNUlYqUX2 upUPpi yvFNHSWomRMqJZ7TRn5QfLsTEPKOvg7_hdx_5okqPHCOOZmxPQ3MYTUs=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/f nmsueMRNmVMfs9nAlzhG05NIbhMil4_sJcpm8LeLQwedZmUG30GhOozM2DKoircImcQEqL kdyrJWPIz2BswkJC1QOMfq4VCzN7rZRloictU KAhX2ngexGMvomjrsdS75EftUwtLNvumd7UUPpfEMevmVe3N1cTcEW dTL_k5v8LoEnQ=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/Xu9sruUj_W0jiVJQL2oUxgbZDVFrSqgLh brkNXBPiDEAqTW MwDh17vjr7KsPZvrU81hR_YvAiMQbaR5xqgSqDdsGWdaG3kayHBf5Eu qnLW0rJ_qzJ_xHXoWRgjBK7aEckyDjPJEkSpfbckmzyDGt9im02qbSzCnjrd68rESanl_jba0I=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/qbIF504vCe82Bh1cNZcXf8tnLtdrdBMk KcHpFjFj5sliPTzQrAUaz1SQaJ4rkL19nUYv7mu9sfKXN4gIi nZ2dsbYWlzTy2sobdnDXdR42OgMpatmP4GkbJ6vSCsn1NYhAnCVuf3w o78JSt0eAiQXa0JSFYZODiqDEOTGWwLxrPDQbVJU=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/bd5LqYuIcWseIG1rar3Ls7C YEpjhx51RcKfHqZwT7BL3raDMERHhN_cLft4KGHuZkrpf9aPjjdaExUaOmn1TMXvEZRrlhhmaIl7aguOunG3qnPuhy9VyNU08 Rq UEja q FeddX4rV_ki QvCqItK05d0Nb9QfRK7tdE8SJwPomiw54Ko=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/MA12c0oCgB6MXJuv nH48Iqte5vI02yRciBwwcPNuoTYLewdf1S8Z a4kWPGinWjvhyqDfd2diHDaLq8hpERjUCeiL1ZumkuAHgVWsROMUySJ9v1Mov2jeB9SdpJ6EbEVpw8YTUlDlI474N8N0HcGwOfIRequfZBm4mk_zCGYylW7aRAK6w=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/SAOSNlQH42YsE8jjQ3YgbFNQJewIxeF8W4pLzja5nicUjQrcYrXNNVLs1ZL I66Rj02Jv418WGdNoI13oDUCBgBfaBH3c3DvUzIiUQPthP57Nnv_npbRd_Sbrkkr k2JSpFXI0wHEb2xnYPtMLMmxzhpVDGOh5GSa1fQXpfZHVWy3USnfk8=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/OtlfkHamKS1LvVZxFz3zG5q_9fesGmPWAM9YyzbTRXARf62 gwGUAnRPgZUcrcnY7a4jKkS8tPkSjqb1FgWUaHZk6SwBn2qiMCnb81085onp_F6 ztNGHI51zaoWmOx8Ic4qsuCTgNAwRqwxa1xQ3DXB0VlnCXVWmNKcDNgt W1ysP0NFds=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/V72SXTlgvxthwcHXaOXawYNIkWGURpPUrPh03KEn9t5gm1Gevjr7jnuY7 vCvb3g1DpJLHLN_xrqVI0k6tBT ObpuDSSKctqiY3ig0oN25vlrVnno325r8Sx2zA10ax9fcV78LtEH1A3M_XsaG2zdEcvDJqto pJXaEORc7Vve8Sm5cxBWs=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/8kIXcpgZbH Ymiu8OY26Dh_Om2CUuhacHKhM2pOfvVuSl33QNjcC9Z3ic8PGl 2y8YtaEDRyOtNws1I EXkOrhEYffZOncydZXixoPKaVr2GRXhfm_ihPI_rjPWTKQH_1N67K36OZXGnnlNcj_xg7y7856N3Qwxp_auvXwf2EZZwqLGBFv0=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/cMihbFMU0gZ6ef2UaZZKwOEbDVQYwUc9MAKqbG4rwA cR6IAXo1p_BNn1REo Sy_lI6 sAfaNBHjK4Mls4Ip4 tcPJ9rkgDnegQeFKh_C1ba6Rjg5_LEG7tofi8WbB2s20S_EJ5KjRaYotbhEBzF6B4eZtmnOwIEt3RcdiAKJ7QAB kbm0Y=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

http://www.hostflashconcepts.com/wmScUfTj2yhuZ95Nm38G462SK8d318Sp DHbi7DkhawDaycqLVYz U9Ki X8dK vmzUm2xAsGpMgS5_w59DdBe0ywWnpYw1IAtN0O_Tm7xhwq47XI9wKuPcL v7j5luq53qIHk_eTRXqWUCVtMiF3V mH7MV2qyl419qmv2MB6YNjcVSLL0=-GzIAAAR0Y7H94TEvGARBgw44BuydRBYGG2NnCVKN_MYYvwVlZqfYt 5J1OPEAw==

Latest 30 of 99 download URLs

Remove mp3rocket_setup.exe - Powered by Reason Core Security